CVE-2021-22101
27.10.2021, 15:15
Cloud Controller versions prior to 1.118.0 are vulnerable to unauthenticated denial of Service(DoS) vulnerability allowing unauthenticated attackers to cause denial of service by using REST HTTP requests with label_selectors on multiple V3 endpoints by generating an enormous SQL query.Enginsight
| Vendor | Product | Version |
|---|---|---|
| cloudfoundry | capi-release | 𝑥 < 1.118.0 |
| cloudfoundry | cf-deployment | 𝑥 < 16.24.0 |
𝑥
= Vulnerable software versions